2/ How the attack works:

First. @keirgiles.bsky.social gets a message purporting to be from the State Dept asking for a consultation.

Pretty common thing for him.

And these attackers did everything to make this outreach look credible...

Like CCing a bunch of @state.gov email addresses...
Post image

Comments